Articles tagged Cisco
-
NewsExploited Cisco SD-WAN Manager flaw gives attackers admin API access
CISA added a critical Cisco Catalyst SD-WAN Manager authentication bypass to its KEV catalog with a three-day federal deadline and a required compromise check.
-
VulnerabilityCisco Identity Services Engine Authentication Bypass (CVE-2026-76460)
CVE-2026-76460 is a CVSS 10.0 unauthenticated API authentication bypass in Cisco ISE and ISE-PIC, CISA KEV-listed Sept. 16, 2026, with no vendor workaround.
-
VulnerabilityCisco Secure Email Gateway SQL Injection (CVE-2026-76461)
CVE-2026-76461 is a CVSS 9.8 SQL injection flaw in Cisco Secure Email Gateway's AsyncOS email parsing that allows unauthenticated root command execution.
-
VulnerabilityCisco Secure Firewall Management Center Authentication Bypass (CVE-2026-20079)
CVE-2026-20079 is a maximum-severity CVSS 10 authentication bypass in Cisco Secure Firewall Management Center, added to CISA KEV Sept. 9, 2026 as actively exploited.